s5120设置如下:
[H3C]dis cu
#
version 5.20, Release 1513P62
#
sysname H3C
#
irf mac-address persistent timer
irf auto-update enable
undo irf link-delay
#
domain default enable system
#
telnet server enable
#
password-recovery enable
#
vlan 1
#
vlan 2 to 4
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool vlan2
network 192.168.2.0 mask 255.255.255.0
gateway-list 192.168.2.1
#
dhcp server ip-pool vlan3
network 192.168.3.0 mask 255.255.255.0
gateway-list 192.168.3.1
#
dhcp server ip-pool vlan4
network 192.168.4.0 mask 255.255.255.0
gateway-list 192.168.4.1
#
user-group system
#
local-user admin
password cipher $c$3$ZW+MwMEr5pp2y8OcxedQjJ3UGNKk0aRh
#
interface NULL0
#
interface Vlan-interface1
ip address 192.168.0.253 255.255.254.0
#
interface Vlan-interface2
ip address 192.168.2.1 255.255.255.0
#
interface Vlan-interface3
ip address 192.168.3.1 255.255.255.0
#
interface Vlan-interface4
ip address 192.168.4.1 255.255.255.0
#
interface GigabitEthernet1/0/1
port access vlan 2
#
interface GigabitEthernet1/0/2
port access vlan 2
#
interface GigabitEthernet1/0/3
port access vlan 2
#
interface GigabitEthernet1/0/4
port access vlan 2
#
interface GigabitEthernet1/0/5
port access vlan 2
#
interface GigabitEthernet1/0/6
port access vlan 2
#
interface GigabitEthernet1/0/7
port access vlan 2
#
interface GigabitEthernet1/0/8
port access vlan 2
#
interface GigabitEthernet1/0/9
port access vlan 3
#
interface GigabitEthernet1/0/10
port access vlan 3
#
interface GigabitEthernet1/0/11
port access vlan 3
#
interface GigabitEthernet1/0/12
port access vlan 3
#
interface GigabitEthernet1/0/13
port access vlan 3
#
interface GigabitEthernet1/0/14
port access vlan 3
#
interface GigabitEthernet1/0/15
port access vlan 3
#
interface GigabitEthernet1/0/16
port access vlan 3
#
interface GigabitEthernet1/0/17
port access vlan 4
#
interface GigabitEthernet1/0/18
port access vlan 4
#
interface GigabitEthernet1/0/19
port access vlan 4
#
interface GigabitEthernet1/0/20
port access vlan 4
#
interface GigabitEthernet1/0/21
port access vlan 4
#
interface GigabitEthernet1/0/22
port access vlan 4
#
interface GigabitEthernet1/0/23
port access vlan 4
#
interface GigabitEthernet1/0/24
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/25
port link-type trunk
port trunk permit vlan 1
#
interface GigabitEthernet1/0/26
port link-type trunk
port trunk permit vlan 1
#
interface GigabitEthernet1/0/27
port link-type trunk
port trunk permit vlan 1
#
interface GigabitEthernet1/0/28
port link-type trunk
port trunk permit vlan 1
#
ip route-static 0.0.0.0 0.0.0.0 192.168.0.1
#
dhcp server forbidden-ip 192.168.2.1
dhcp server forbidden-ip 192.168.3.1
dhcp server forbidden-ip 192.168.4.1
#
dhcp enable
#
load tr069-configuration
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user-interface vty 5 15
#
Return
MSR3610静态路由配置如下:
现在上不了外网,显示如下:
请问该怎么修改配置
(0)
最佳答案
您好,交换机配制没有问题,看ping交换机丢包嘛
(0)
用192.168.2.2ping192.168.2.3,超时
检查下MSR930的拨号口配置
tcp ms 1024
mtu 1492
然后检查下MSR 930的0口是否和交换机的24口连接
和NAT配置
或者在MSR上ping下测试看下 外网和内网是否通了
(0)
那把NAT配置加上在看看 如最简单的吧 [acl a 3000] [ru 100 per ip] [int di 0] [nat out 3000]
g0口是跟交换机g24连的,现在是不知道路由器上怎么设置了
那现在有2个思路 1.确认下MSR930的外线接在那个扣上的 是否和pppoe client绑定的端口一致 2.查看下pppoe拨号是否成功 3.msr930是否配置了NAT 或者说NAT配置是否正确 4.通过在MSR 930ping测试 比如ping 223.5.5.5测试公网连通性 ping 192.168.4.1 内网连通性
那把NAT配置加上在看看 如最简单的吧 [acl a 3000] [ru 100 per ip] [int di 0] [nat out 3000]
老弟,我分析你是90%没有在路由器上写2.0 3.0 4.0网段的回程路由
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
用192.168.2.2ping192.168.2.3,超时